First published: Thu May 27 2021(Updated: )
A vulnerability found in EdgeMAX EdgeRouter V2.0.9 and earlier could allow a malicious actor to execute a man-in-the-middle (MitM) attack during a firmware update. This vulnerability is fixed in EdgeMAX EdgeRouter V2.0.9-hotfix.1 and later.
Credit: support@hackerone.com support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
UI EdgeMax EdgeRouter Firmware | <=2.0.9 | |
Ubiquiti EdgeMAX EdgeRouter | ||
UI EdgeMax EdgeRouter Firmware | <=2.0.9 | |
Ubiquiti EdgeMAX EdgeRouter |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-22909.
The affected software is EdgeMAX EdgeRouter V2.0.9 and earlier.
The severity of CVE-2021-22909 is high with a score of 7.5.
A malicious actor can execute a man-in-the-middle (MitM) attack during a firmware update.
You can fix CVE-2021-22909 by updating to EdgeMAX EdgeRouter V2.0.9-hotfix.1 or a later version.